Sign inSign up
Envoy Gateway

dhi.io/envoy-gateway

Envoy Gateway 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.7-debian-fips-dev, 1.7-debian13-fips-dev, 1.7-fips-dev, 1.7.5-debian-fips-dev, 1.7.5-debian13-fips-dev, 1.7.5-fips-dev

Index digest:

sha256:1e3719aa7aeee806db0671f8e8aae60e6c406c6041e8d32b68ea84b0f1021e7c

Manifest digest:

sha256:b490dad5b902e94b644c03974a7722b14251fb69b7a2d49d362d9bc849860caf

Size

77.44 MB

Last pushed

16 hours ago

Vulnerabilities

0
0
0
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/envoy-gateway:1.7-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/envoy-gateway:1.7-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/envoy-gateway@sha256:9a59491396cad0e54b58a2112309ae6aa6ab60fea1c9aa22cb62d630624368f6
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/envoy-gateway@sha256:d81a438d5387cf04a1d32a99c370d6175f75aa16e0e6e9ea3acda633354a11bf
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/envoy-gateway@sha256:037d5e57c3305e95e186034e35333b89d8cc71e8cb07c81e246fb403fc0d0f0f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/envoy-gateway@sha256:db007fb88a2e861e92e7db8d433c8dcc59a4d49ef35d88272581003c12dd846f
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/envoy-gateway@sha256:0749c57c324bc2ddc06944cd304dc2fe8b5a74531fcabc8c0952815534ca8638
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/envoy-gateway@sha256:cc8c9caa090863be0556add480127ba07643aa018be19988deefdd6a88f35413
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/envoy-gateway@sha256:2bf51c3304a36455f67dcfb2134dd6b4e9bda9e67ca7a1edc774668aa93a7eb8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/envoy-gateway@sha256:45ffcaca9b2913ea0c0b954ee2627abd8362e56c8d3204e17208cf92b0f8d301
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/envoy-gateway@sha256:9f2d3d0cd1a6d942417842df3b5e20e2f9c7596011503c74ea531a9bdfca951b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/envoy-gateway@sha256:98c2888e015e412f57add4531eeb01484f4079fab3b5a124be48e9ffd08398bc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/envoy-gateway@sha256:b5bb0dbbc277bcce603e4dba2b78c99e0186353369e6d99697817e364ba4e783
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/envoy-gateway@sha256:2e61953413c9b9559b1b649097a721f88d27412f68fd9992f77b39606caeb628
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/envoy-gateway@sha256:0a412e8dc65067101a84035510d853aec5c08826ba063c5bce1d66634b941c71
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/envoy-gateway@sha256:e67b303928b55442af0a6e2d9543449148e66d4a2df65f1d09aab95247f0c3f4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/envoy-gateway@sha256:528764b6a6100eb13aff22421ea65132bba337dd07a6661f95b0a10b55f4418a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/envoy-gateway@sha256:67456beb1ac0f71866c29a8920b8c3fd9d7fe7355bdcd2cd590dd8f04d06aedb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/envoy-gateway@sha256:d1fa4596e323fcb2b9fd318e9ccb8aae019c5faaa0d0cd36f32b35a789989a10